CVE-2019-14563

HIGH

EDK II - Privilege Escalation

Title source: llm
STIX 2.1

Description

Integer truncation in EDK II may allow an authenticated user to potentially enable escalation of privilege via local access.

Scores

CVSS v3 7.8
EPSS 0.0005
EPSS Percentile 16.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-681 CWE-787
Status published
Products (2)
debian/debian_linux 9.0
tianocore/edk2
Published Nov 23, 2020
Tracked Since Feb 18, 2026